Логотип exploitDog
bind:CVE-2023-25347
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-25347

Количество 2

Количество 2

nvd логотип

CVE-2023-25347

почти 3 года назад

A stored cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3, allows remote attackers to inject arbitrary web script or HTML via input fields. These input fields are located in the "Title" Input Field in EventEditor.php.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2wx5-xx7r-5pp4

почти 3 года назад

A stored cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3, allows remote attackers to inject arbitrary web script or HTML via input fields. These input fields are located in the "Title" Input Field in EventEditor.php.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-25347

A stored cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3, allows remote attackers to inject arbitrary web script or HTML via input fields. These input fields are located in the "Title" Input Field in EventEditor.php.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
github логотип
GHSA-2wx5-xx7r-5pp4

A stored cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3, allows remote attackers to inject arbitrary web script or HTML via input fields. These input fields are located in the "Title" Input Field in EventEditor.php.

CVSS3: 5.4
0%
Низкий
почти 3 года назад

Уязвимостей на страницу